Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In nDPI through 3.2 Stable, an out-of-bounds read in concat_hash_string in ssh.c can be exploited by a network-positioned attacker that can send malformed SSH protocol messages on a network segment monitored by nDPI's library.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ntop nDPI 缓冲区错误漏洞
Vulnerability Description
Ntop nDPI是意大利Ntop公司的一款用于深度数据包检查的开源库。 Ntop nDPI 3.2 Stable及之前版本中的ssh.c文件的‘concat_hash_string’函数存在缓冲区错误漏洞。攻击者可借助格式错误的SSH协议消息利用该漏洞造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A